PT-2026-57447 · Unknown · Imagemagick

CVE-2026-61870

·

Published

2026-07-11

·

Updated

2026-09-08

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 7.1.2-26
Description A memory leak exists in the VIFF encoder that occurs when memory allocation fails. An attacker can cause a denial of service by processing specially crafted VIFF images to exhaust available memory.
Recommendations Update to version 7.1.2-26 or later.

Exploit

Fix

DoS

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-61870
ECHO-AF5A-046F-F3B2
GHSA-M596-67P7-69WH
JLSEC-2026-1076
OESA-2026-3057
OESA-2026-3058
OESA-2026-3059
OESA-2026-3060
OESA-2026-3061
OPENSUSE-SU-2026:11273-1
OPENSUSE-SU-2026:11344-1
OPENSUSE-SU-2026:21391-1
OPENSUSE-SU-2026:21401-1
SUSE-SU-2026:22829-1
SUSE-SU-2026:3192-1
SUSE-SU-2026:3193-1
SUSE-SU-2026:3194-1
SUSE-SU-2026:3201-1
SUSE-SU-2026:3219-1
USN-8739-1

Affected Products

Imagemagick